iluminae

joined 1 year ago
[–] [email protected] 3 points 4 months ago* (last edited 4 months ago) (1 children)

You could write a script that just restarts your container, make sure unprivileged users cannot edit it, and do one of two things:

  1. make a sudoers entry for your unprivileged account to call just that script as a user in the docker group with sudo
  2. use setuid on the script to have it execute from the docker group even when executed by users
[–] [email protected] 3 points 4 months ago

American Pie by Don McLean

I would listen to it on repeat for what seems like an entire era of my life. Could sing the whole thing at some point!

[–] [email protected] 1 points 5 months ago (1 children)

beautifully done buddy

[–] [email protected] 6 points 5 months ago (2 children)

I noticed fedora comes with OOTB X11 DEs for gnome shell and legacy - it's just not the first choice in the list.

[–] [email protected] 4 points 5 months ago

K8s has a mild solution to chicken and egg situations for nodes - the nodes support 'static manifests' which can be pods they know how to bring up before ever connecting to the API server. So you could have your wireguard peer be brought up this way. Downside is while those static manifests show up in k8s APIs, they aren't fully manageable since they are defined by files on disk.

[–] [email protected] 12 points 5 months ago (5 children)

Wave soldering machine - they basically suspend the whole board above a vat of solder, it bonds anywhere it can. So if they don't need that chip on this model, it's getting solder anyway.

[–] [email protected] 31 points 5 months ago (7 children)

Sometimes I wonder if in 75 years people will look back on our caffeine use in this generation like we currently look back at cocaine use in products in the 19th century. Until then, I continue to slurp down coffee like that is my actual job.

[–] [email protected] 23 points 5 months ago (4 children)

As a IBM developer - ouch man, that hurts. I guess I'll just go back my job doing... nothing (actually sounds like a sweet job)

[–] [email protected] 175 points 6 months ago (31 children)

But flight data is available - this guy just labels her N number and filters the data in a creepy way. I get that it's probably causing her danger to have stalkers waiting at the destination for her - but those stalkers always had access to this flight data.

Seems like a workaround for Taylor would be to not own a plane and charter a different one every time. (Or do something actually environmentally minded :/)

[–] [email protected] 1 points 6 months ago

Yea it's very easy to learn enough to run, it has built-in service discovery and secrets now, and writing parameterized jobs feels so much nicer than a helm chart in k8s.

10/10, would orchestrate again

[–] [email protected] 3 points 6 months ago (4 children)

I use k8s at work a lot - I choose to use Nomad at home, you may want to add that to your shortlist.

[–] [email protected] 2 points 7 months ago

I am nearly complete migrating my ceph cluster and nomad compute cluster to arm :shrug:

view more: ‹ prev next ›